Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Remove shrtm.nu from phishing.txt #1252

Open
wants to merge 1 commit into
base: master
Choose a base branch
from

Conversation

floschliep
Copy link

Summary

This removes shrtm.nu from phishing.txt. It's the domain for a URL shortener that I own/maintain.
I assume the domain was wrongfully added here due to some criminal abusing the service for a phishing attack.
As the service is used by the vast majority of people for legitimate purposes and illegal activity is monitored and taken action on, I don't think the domain should be listed here.

Checklist

  • I have verified that I have not modified the following files:
    - inside the adguard folder
    - inside the alt-version folder
    - inside the dnsmasq-version folder
    - everything.txt

@spirillen
Copy link
Contributor

Well, you are well represented on various lists, even those that haven't been maintained for a very long time....

Search result from External Hosts-Sources

@mypdns's External Hosts-Sources can be found here

data/UltimateHostsBlacklist2.txt:shrtm.nu
data/hphosts/psh/domain.list:shrtm.nu
data/hphosts/psh/domain.list:www.shrtm.nu

Sorted result

www.shrtm.nu

Search result from easylist

Search in Matrix

Search results from Matrix blacklist project

Did not find any matching RPZ records

+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++
+ Thanks to My Privacy DNS for this knowledge
+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++

@floschliep
Copy link
Author

@spirillen Thanks for the helpful pointer – I'll take a look at these.

I only recently became aware of the listings through a customer report who was using NextDNS, which in return uses some of these lists internally. Now I'm trying to make my way through and see what's the damage.

Would I need to remove the domain from the other lists so that we can remove it from this repo?

@spirillen
Copy link
Contributor

spirillen commented Jul 2, 2024

I'm afraid your changes to get off this list seems slim... #1210 As it looks like this project have been abandon by it's maintainers as last commit was 6 month ago Jan 8 2024

But for the other, you'll need to find the upstream sources and request removal from those lists

I have opened the issue regarding this domain in my domain index project and we can continue the talk over there, as I have no other powers here than trying to spread knowledge and being helpful

@floschliep
Copy link
Author

@spirillen Amazing, thanks for your community support here – hadn't realized this project was abandoned.

spirillen added a commit to external-sources/hosts-sources that referenced this pull request Jul 2, 2024
Do to a bug in Phishing.Database we are not able to do full search in the active files. For that reason we are now importing the `ALL-phishing-links.txt` and strips it down to domain only list in `data/phishing_database/`

Related issues:
- mitchellkrogza/Phishing.Database#840
- mitchellkrogza/Phishing.Database#881
- mitchellkrogza/phishing#381 (comment)
- mitchellkrogza/phishing#396
- mitchellkrogza/phishing#407
- mitchellkrogza/phishing#395
- mypdns/matrix#624
- blocklistproject/Lists#1252
- mitchellkrogza/Phishing.Database#840
- mitchellkrogza/Phishing.Database#722

Trying to use @main for the php installer and using php version 8.4

Added `libdomain-publicsuffix-perl` to the dependencies.sh script as it is required by perl in import.sh. It turns out Perl just anoyingly does it again... 😏
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

2 participants